CVE-2025-54838

6.8MEDIUM

An Incorrect Authorization vulnerability [CWE-863] in FortiPortal 7.4.0 through 7.4.5 may allow an authenticated attacker to reboot a shared FortiGate device via crafted HTTP requests.

Publicado: 12/9/2025Atualizado: 12/9/2025

Descrição

An Incorrect Authorization vulnerability [CWE-863] in FortiPortal 7.4.0 through 7.4.5 may allow an authenticated attacker to reboot a shared FortiGate device via crafted HTTP requests.

Análise IADesenvolvido por IA

Produtos Afetados

fortinetfortiportal

Referências